Sign inSign up
AuthService

dhi.io/authservice

AuthService 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.1-debian-dev, 1.1-debian13-dev, 1.1-dev, 1.1.8-debian-dev, 1.1.8-debian13-dev, 1.1.8-dev

Index digest:

sha256:8cb51accc4ba02d2e6ee9494f16f965198c47fd9bda03f8bbb0dd9ab8cfc8071

Manifest digest:

sha256:78a2cb357f646bfd7df53d7cd2effbf65579a8146592dbb84adddf6a4ed00fce

Size

51.34 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/authservice:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/authservice:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/authservice@sha256:2e7354aa0226e76ef0196830eb42bdbbb9fa11815d35e70f186359864ed7acb7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/authservice@sha256:2412185ce14081477f850d32c1fb6768f09a3e99542088b0dbcb53a33ef16f83
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/authservice@sha256:64dd1f8c196c4fa55fa91b282ced54c87f9a6b36707255c453e3c2201af4d9d2
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/authservice@sha256:1e3a9fea10bdd8b4b7e893471e95f3d97afc35a10490242864ff31297e76c684
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/authservice@sha256:3f548fd59e9290a3911cb96b2b7be82f13fa86d0d11b3e98ad057957455be1c4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/authservice@sha256:2c1fdebc870fbec11b76a16d25e70478458eb60dbeb2a3368e1dd4a1e1ef3140
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/authservice@sha256:f0a9ddc70401f995864c2ff151776223a61ae4102235c428a3dbaa5f933f31ee
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/authservice@sha256:9292216d7c496f85e8240603135f4a8fa4931c626fef060134fecdb25495f628
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/authservice@sha256:37a4127a4884a3bdb3db031729cfe1f1931aa1563a9240cd0177ce095c43765a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/authservice@sha256:389ddc7c07f26d0cf8e83f5d8539e36f3167a856c2fbc02d0a59407939157e70
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/authservice@sha256:605f316ed81eb422186d1a65b0094d5ac91d69f8ed50aa674b415d6714597528
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/authservice@sha256:e9bb47e0bd5ad23788aaff67b00ec28053595fd5c9c075b7d44da5018dd1ceea
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/authservice@sha256:8bb6fc307104aa760e47592c64f35c571076b6608d07bb55f6e05ce02a632efb
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/authservice@sha256:01d5be019bf365274129a45dd40c12fdbf58437f4eb5b377954f027738eed919
SPDX SBOMhttps://spdx.dev/Documentdhi.io/authservice@sha256:b4965a47976521d422379834487579cad7d63c34d359fe47d8b1e7fd8d8de266